A firewall at a remote site on the WAN side of Steelhead appliance (A) is stripping out the 76 and 78 values in the TCP options field. Steelhead appliance (B) is in the local cluster of appliances communicating with an Interceptor appliance. The desired result is for optimization to continue between Steelhead appliance (A) and Steelhead appliance (B) for all traffic originating from the remote site. A suggestion is made to use fixed target rule(s) to meet this objective. Based on the information provided select the best answer from the choices below:
How is peer affinity reset in the CLI for an Interceptor appliance cluster?
Refer to the exhibit.
If Steelhead Mobile Client B offers up a share on the network, what is needed on Steelhead Mobile Client R to open an optimized connection to this share if enhanced auto-discovery is enabled on all Steelhead appliances?
To verify that the Steelhead Mobile client software is running, what process should you look for in the Windows Task Manager?
Is any user data sent across the out-of-band (OOB) connection of a Steelhead appliance?
Which authentication methods are available to the Steelhead Mobile Controller?
What are the SSL trusts that must be configured for a Steelhead Mobile client to successfully optimize SSL traffic? (Select 2)
After upgrading the Steelhead Mobile Controller to the latest software release, it requires a reboot. During the reboot, what would happen to the users connected to the Steelhead Mobile Controller via the Steelhead Mobile client?
You can monitor your Steelhead appliance disk performance using which reports? (Select 2)
A data center location has three Steelhead appliances and one Interceptor appliance clustered together. If Steelheads A and B are unable to handle the new web traffic on port 80, the administrator does not want the connection to be serviced by Steelhead C. Given the current rules, we want to prevent traffic from redirecting to Steelhead C.
Current Rules:
Rule 1: Redirect rule for ports 445, 139, 80, target SH A
Rule 2: Redirect rule for ports 8080, 80, target SH B
Auto (default rule)
Which rule should be added on the Interceptor to achieve desired functionality?
Which of the following are valid QoS priority queues for Steelhead appliances? (Select 3)
A customer wants to optimize traffic from remote VPN sites to DMZ servers in the data center shown in the accompanying exhibit.
The customer would also like to deploy their data center Steelhead appliance in a way that would allow them to keep transparency to the LAN servers, and allow the LAN servers to initiate optimized connections to remote sites. The current network architecture can satisfy these requirements by using which following deployment method?
In a Steelhead deployment, the customer decides to use Full Transparency and block all incoming/outgoing TCP connections on port 7800 on their firewall. However, they are finding all TCP connections are passing through the Steelheads (even ones that should be optimized via the in-path rule set).
If Full Transparency uses the original IP addresses and TCP ports for inner connections, what is needed to fix the problem?
You are configuring HighSpeed TCP in an environment with an OC-3 (155Mb/s) and 60 milliseconds of round-trip latency. You know that the rule of thumb is to set the WAN router queue length to BDP for the link. Assuming 1500 byte packets, the queue length for this link would be closest to: (Hint: Use the calculator)
Place the following commands to upgrade a Steelhead appliance from the CLI in the correct order. (NotE. include only the necessary steps)
1) SH (config) image install image.img 2
2) SH (config) image fetch http://server/path/image.img
3) SH (config) boot system 2
4) SH (config) restart clean
5) SH (config) reload
6) SH (config) write memory
WCCP uses bits to create and distribute buckets. Using HASH assignment, what are the maximum number of bits used?
What is the supported redirection scheme/s used when a Steelhead appliance is in a WCCP deployment?
The Primary interface is REQUIRED for which deployment methods and features?
1) In-path
2) Server-side out-of-path
3) Logical in-path (WCCP/PBR)
4) Hybrid Mode
5) Proxy File Services (PFS)
Refer to the exhibit.
In order to achieve optimization using auto-discovery for traffic coming from site C and destined to site A in the exhibit, which configuration below would be required?
When using Correct Addressing, without Enhanced Auto-discovery (EAD), what is the size of the probe response in the return SYN/ACK packet from the server-side Steelhead appliance?
The Home page in the Management Console for the CMC appliance can be configured to display what information?
Refer to the exhibit.
You noticed the following entry in the logs. What is the cause of the problem?
Refer to the exhibit.
A connection times out when Client41 and Client42 attempt to either establish an HTTP session to Server31 or an FTP connection to Server32 after not connecting to them for some time. The very next attempt to connect to these services done immediately after the failure seems to work correctly. The clients are able to ping both servers and no access-lists are configured on the routers. SH3 uses the IP address of R3f0 as its default gateway. Upon powering off SH3 and SH4, the problem goes away even for first connection and everything works normally (even after not connecting for extended periods of time). Which of the following are likely to correct this problem?
Refer to the exhibit.
Corp-A and Corp-B have overlapping address space and therefore the network administrator implemented NAT to overcome this. Users from Corp-A NAT to 172.16.1.0/24 and users from Corp-B NAT to 172.16.2.0/24. Users in Corp-A use the destination address of 172.16.2.0/24 to access the resources in Corp-B. The servers in Corp-B use the client IP for authentication. You deploy the Steelhead appliance using the default WAN visibility mode but noticed all the connections are passed-through. What is the likely problem?
What Steelhead appliance models support the installation of Microsoft Windows Server 2008 R2 package on the RSP? (Select 2)
In an in-path deployment, if a naked SYN packet arrives on the WAN interface of Steelhead, what probe option is added to this SYN packet for auto-discovery?
The alerting threshold for CPU utilization is 70% and the reset threshold is 50%. Which of the following situations will result in an alarm being triggered? (Select 2)
After a new physical in-path installation, all applications appear to be slower. Adding a pass-through rule does not seem to fix the problem. Which of the following is the most likely cause of the problem?
On the Interceptor appliance, the Neighbor Peers page shows which of the following?
The default setting for “allow failure†in the Interceptor appliance version 2.0 is: (Select 2)
Where in the Steelhead appliance can you verify IP address settings? (Select 2)
In a virtual-inpath deployment, when the Steelhead appliance exports data to a flow data collector:
-- Exhibit –
-- Exhibit --
Refer to the exhibit. According to the screenshot, what does the highlighted symbol represent? (Select 2)
You have a client and server using SMB2 signing. You have SMB optimization enabled on your SteelHeads, but SMB signing is not enabled on the server-side SteelHead. What is the effect on this on an SMB connection which the SteelHeads attempt to optimize?
Citrix remote applications, running on the server and to access printers and disk drives, are not performing well. What can you configure to improve the performance?
After completing the SRDF configuration on both Steelhead appliances and restarting the optimization service, the SRDF connections in the Current Connections report show a red protocol error icon in the Notes column. What could be a cause of this issue?
Refer to the exhibit.
Assume that a packet being optimized by SH10 incorrectly ends up on SH11 (due to load balancing error, or similar). How can you ensure that this packet is correctly returned to SH10?
Which of the following commands will show the log level configuration? (Select 2)
How many in-path rules will a LAN-initiated (i.e. SYN packet arrives at a LAN port of an In-path interface) single connection match on an Interceptor appliance?
-- Exhibit –
-- Exhibit --
Refer to the exhibit. A Steelhead administrator has recently decided to implement two Interceptor appliances and one Steelhead appliance on his data center. After configuring the Interceptor appliances, and the Steelhead appliance, he decided to check if the devices will work appropriately. According to the information shown, what statements are true? (Select 2)
A customer already has a SteelHead appliance in their datacenter and wants to add Steelhead Mobile. Their current deployment has their VPN gateway in parallel with their server-side SteelHead. The customer doesn’t want to interrupt VPN clients by moving the SteelHead in-path with the VPN gateway, so they will test using a fixed-target rule to the SteelHead in-path interface. Take a look at this diagram:
Will the client traffic be optimized to the server 192.168.1.10?
A customer has recently implemented data store synchronization. The SteelHeads are reporting “Duplicate data store id.†What is the probable cause?
TCP-over-IPv6 traffic is not optimized although you have enabled packet-mode optimization and restarted the optimization service. What could be causing this issue? (Select 2)
You wish to optimize SSL connections to an internal server. Where should the server certificate and private key be installed?
You plan to downgrade a SteelHead from RiOS v9.0.1 (Apr 17 2015) to 8.6.3 (Aug 7 2015). The appliance has not run v8.6.3 previously. Will this be successful?